performing-web-cache-poisoning-attack

Warn

Audited by Socket on Mar 15, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: The skill is internally consistent as an offensive security guide, but it gives an AI agent concrete exploitation procedures for web cache poisoning, cache deception, and authenticated content exposure. Install sources mentioned are mostly official and there is no obvious credential exfiltration or third-party interception, so this is not confirmed malware; however, it materially enables offensive security actions with real-world impact on target systems and other users, making it high risk.

Confidence: 91%Severity: 78%
Audit Metadata
Analyzed At
Mar 15, 2026, 09:41 PM
Package URL
pkg:socket/skills-sh/mukul975%2FAnthropic-Cybersecurity-Skills%2Fperforming-web-cache-poisoning-attack%2F@0a10d8d5ec1e0bfe78caeca1fc664ea487cda48e